PT-2023-18210 · Samsung · Samsung Flow

Shai Shapira

·

Published

2023-02-09

·

Updated

2023-02-17

·

CVE-2023-21443

CVSS v3.1

8.8

High

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Samsung Flow for Android versions prior to 4.9.04
Description The issue is related to an improper cryptographic implementation, allowing adjacent attackers to decrypt encrypted messages or inject commands.
Recommendations For versions prior to 4.9.04, update to version 4.9.04 or later to resolve the issue.

Fix

Inadequate Encryption Strength

Weakness Enumeration

Related Identifiers

CVE-2023-21443

Affected Products

Samsung Flow